INDEXHABOUTHcopyright © samir amberkar

1.1
1.2
1.3
1.4
1.5
1.6
1.7
1.8
1.9
1.10
1.11
1.12
1.13
1.14
1.15
1.16
1.17
1.18
1.19
1.20

2.1

3.1
3.2
3.3
3.4
3.5




another knowledge site

3GPP Modem
Simulator


Test Your
Knowledge


another knowledge site




Article on
LTE NAS Security - 2
by
Samir Amberkar
(published on 6-Jun-2012)


Abstract: This article is a continuation of earlier article on LTE NAS Security which mainly explained "native" security context. It talks about LTE NAS Security during Inter RAT scenarios.


In earlier article, we looked at security flow for "native" NAS security context. Consider scenarios of inter-system change (inter RAT mobility) wherein UE move from E-UTRAN to GERAN/UTRAN or from GERAN/UTRAN to E-UTRAN. It would be needed to maintain security and at the same time, reduce time needed to "switch". This can be done by re-using earlier established native security context if present (something like E-UTRAN to UTRAN and back to E-UTRAN) or otherwise by mapping one security context to another one (EPS security context ⇔ UMTS security context).

In LTE, NAS security is independent of AS; NAS security activation is done by NAS and messages are integrity protected/ciphered by NAS itself . In UMTS, even though NAS takes care of security context exchange (RAND, AUTN, KSI, Capability etc.), integrity protection/ciphering/security activation is performed by AS [33.102:6.4.5], [25.331:8.1.2]. Our focus would be flow of security context from LTE NAS point of view.


EPS NAS/UMTS/GPRS Security contexts

EPS NAS, UMTS, and GSM/GPRS security contexts are shown below.

EPS NAS

eKSI
KKSME/KSGSN
UL NAS count
DL NAS count
UE security capability
KNASint/Enc algo id
KNASenc/Int algo id

  EFNASNSC  
UMTS

KSI
CK
IK
selected Ciphering algo
selected Integrity algo

  EFKeys  
GPRS

CKSN
Kc

  EFKc  

Fig 1.5.1


Diagrams below shows the way to derive UMTS/GPRS contexts based on EPS NAS context and other way round. Ref: [33.401:A], [24.008:4.7.7.10], [33.102:6.8.1.2].









Copyright © Samir Amberkar Page 1 of 8


I II III IV V VI VII VIII